2023 CVE Vulnerabilities
31,442 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-28841 | MEDIUM | 6.8 | 0.7% | Apr 4, 2023 | Moby is an open source container framework developed by Docker Inc. that is distributed as Docker, Mirantis Container Ru... |
| CVE-2023-28840 | HIGH | 8.7 | 2.7% | Apr 4, 2023 | Moby is an open source container framework developed by Docker Inc. that is distributed as Docker, Mirantis Container Ru... |
| CVE-2023-1823 | MEDIUM | 6.5 | 0.9% | Apr 4, 2023 | Inappropriate implementation in FedCM in Google Chrome prior to 112.0.5615.49 allowed a remote attacker to bypass naviga... |
| CVE-2023-1822 | MEDIUM | 6.5 | 0.9% | Apr 4, 2023 | Incorrect security UI in Navigation in Google Chrome prior to 112.0.5615.49 allowed a remote attacker to perform domain ... |
| CVE-2023-1821 | MEDIUM | 6.5 | 0.8% | Apr 4, 2023 | Inappropriate implementation in WebShare in Google Chrome prior to 112.0.5615.49 allowed a remote attacker to potentiall... |
| CVE-2023-1820 | HIGH | 8.8 | 1.0% | Apr 4, 2023 | Heap buffer overflow in Browser History in Google Chrome prior to 112.0.5615.49 allowed a remote attacker who convinced ... |
| CVE-2023-1819 | MEDIUM | 6.5 | 0.9% | Apr 4, 2023 | Out of bounds read in Accessibility in Google Chrome prior to 112.0.5615.49 allowed a remote attacker to perform an out ... |
| CVE-2023-1818 | HIGH | 8.8 | 0.9% | Apr 4, 2023 | Use after free in Vulkan in Google Chrome prior to 112.0.5615.49 allowed a remote attacker to potentially exploit heap c... |
| CVE-2023-1817 | MEDIUM | 6.5 | 1.0% | Apr 4, 2023 | Insufficient policy enforcement in Intents in Google Chrome on Android prior to 112.0.5615.49 allowed a remote attacker ... |
| CVE-2023-1816 | MEDIUM | 6.5 | 0.8% | Apr 4, 2023 | Incorrect security UI in Picture In Picture in Google Chrome prior to 112.0.5615.49 allowed a remote attacker to potenti... |
| CVE-2023-1815 | HIGH | 8.8 | 0.9% | Apr 4, 2023 | Use after free in Networking APIs in Google Chrome prior to 112.0.5615.49 allowed a remote attacker who convinced a user... |
| CVE-2023-1814 | MEDIUM | 6.5 | 0.9% | Apr 4, 2023 | Insufficient validation of untrusted input in Safe Browsing in Google Chrome prior to 112.0.5615.49 allowed a remote att... |
| CVE-2023-1813 | MEDIUM | 6.5 | 0.7% | Apr 4, 2023 | Inappropriate implementation in Extensions in Google Chrome prior to 112.0.5615.49 allowed an attacker who convinced a u... |
| CVE-2023-1812 | HIGH | 8.8 | 0.9% | Apr 4, 2023 | Out of bounds memory access in DOM Bindings in Google Chrome prior to 112.0.5615.49 allowed a remote attacker to perform... |
| CVE-2023-1811 | HIGH | 8.8 | 1.0% | Apr 4, 2023 | Use after free in Frames in Google Chrome prior to 112.0.5615.49 allowed a remote attacker who convinced a user to engag... |
| CVE-2023-1810 | HIGH | 8.8 | 1.1% | Apr 4, 2023 | Heap buffer overflow in Visuals in Google Chrome prior to 112.0.5615.49 allowed a remote attacker who had compromised th... |
| CVE-2023-0325 | MEDIUM | 6.1 | 0.7% | Apr 4, 2023 | Uvdesk version 1.1.1 allows an unauthenticated remote attacker to exploit a stored XSS in the application. This is possi... |
| CVE-2023-0265 | HIGH | 8.8 | 1.6% | Apr 4, 2023 | Uvdesk version 1.1.1 allows an authenticated remote attacker to execute commands on the server. This is possible because... |
| CVE-2023-27496 | HIGH | 7.5 | 0.8% | Apr 4, 2023 | Envoy is an open source edge and service proxy designed for cloud-native applications. Prior to versions 1.26.0, 1.25.3,... |
| CVE-2023-27493 | CRITICAL | 9.1 | 0.5% | Apr 4, 2023 | Envoy is an open source edge and service proxy designed for cloud-native applications. Prior to versions 1.26.0, 1.25.3,... |
| CVE-2023-1840 | MEDIUM | 4.8 | 0.4% | Apr 4, 2023 | The Sp*tify Play Button for WordPress plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settin... |
| CVE-2023-27492 | MEDIUM | 6.5 | 0.7% | Apr 4, 2023 | Envoy is an open source edge and service proxy designed for cloud-native applications. Prior to versions 1.26.0, 1.25.3,... |
| CVE-2023-27491 | CRITICAL | 9.1 | 0.9% | Apr 4, 2023 | Envoy is an open source edge and service proxy designed for cloud-native applications. Compliant HTTP/1 service should r... |
| CVE-2023-27488 | CRITICAL | 9.8 | 0.7% | Apr 4, 2023 | Envoy is an open source edge and service proxy designed for cloud-native applications. Prior to versions 1.26.0, 1.25.3,... |
| CVE-2023-27091 | HIGH | 7.2 | 0.7% | Apr 4, 2023 | An unauthorized access issue found in XiaoBingby TeaCMS 2.3.3 allows attackers to escalate privileges via the id and key... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now